logo

Chameleon Malware Poses as CRM App

ID: 86ca0773-2760-5398-956c-5b871b362255

STIX ID: report--86ca0773-2760-5398-956c-5b871b362255

Feed Name: KnowBe4 Blog

Threat Score
70/100

Date Published: 2024-08-13

Date Updated: 2026-04-28

Author: Stu Sjouwerman

...
...

Researchers at ThreatFabric warn of an active phishing campaign distributing the Chameleon Android malware by impersonating CRM applications and targeting users in Canada and Europe; attackers use fake login pages and social engineering to trick victims into reinstalling an app that installs Chameleon (bypassing Android 13+ AccessibilityService restrictions) and then harvests credentials and keylogs, posing a significant risk to business banking accounts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.